Get expert-level AI output in 30 seconds. Browse 2,000+ expert-built and security scanned skills -> Browse skills

    Browse The Skill Store

    33 skills found

    Skill Safety Scanner

    by karim hammoumi

    $29

    Scan AI agent skill definitions for malicious instructions, prompt injections, and security risks—locally.

    2
    0No reviews

    Secret Leak Guard

    by karim hammoumi

    $15

    Locally scan your repository for leaked API keys, tokens, and secrets before committing or publishing code.

    2
    0No reviews

    dependency health check

    by Timoranjes

    Free

    Automated security audit and health check for software dependencies across polyglot projects.

    2
    6No reviews

    Smart Contract Audit Workflow by Atlas

    by Atlas Agent Suite

    $15

    A professional security triage workflow for mapping attack surfaces and prioritizing DeFi smart contract vulnerabilities.

    2
    0No reviews

    owasp top10 reviewer

    by Julian

    $15

    A rigorous security auditor that scans code for OWASP Top 10 vulnerabilities with severity ratings and concrete fixes.

    2
    0No reviews

    🔒 PII & Data Leak Scanner

    by JustHandled Labs

    $15

    Scan local SQL, CSV, JSON, seed, fixture, and log files for PII-indicating names plus email-, SSN-, card-, and phone-like values. Get file/line findings with matched values redacted by default—no network, writes, database connection, or compliance claim.

    2
    3No reviews

    Security Vulnerability Triage Agent for Small Teams

    by Shandra

    $50

    Turns dependency scan reports and security alerts into prioritized remediation plans with severity, exploitability, affected area, safe fix strategy, and verification checklists.

    2
    0No reviews

    🛡️ Skill Injection Scanner

    by JustHandled Labs

    $15

    Scan a SKILL.md package for prompt injection and secret exfiltration before you install or publish an agent skill. Flags env-variable-to-URL exfiltration wording, conditional triggers with hidden side effects, imperative instructions buried in HTML comments, zero-width characters, base64 and long-token blobs, remote content treated as instructions, pipe-to-shell and recursive force-delete references, and overbroad tool requests (network plus browser plus file-write with no scope).

    1
    0No reviews

    GDPR Compliance Scanner for Marketing and Code

    by Martin Gunderman

    $15

    Automatically detect GDPR compliance risks in websites, codebases, marketing assets, and AI workflows.

    1
    1No reviews

    Gitleaks Auto Scan — Secret Detection & Zero Finding Achievement Workflow

    by Shogun Labs

    $5

    Automate secret scanning with gitleaks — detect API keys, passwords, tokens before incidents.

    2
    0No reviews

    prompt injection auditor

    by Timoranjes

    Free

    The security auditor for AI agents. Detect prompt injection, secret leaks, and unsafe tool access in SKILL.md files.

    1
    3No reviews

    🚀 Launch Readiness Checklist Generator

    by JustHandled Labs

    $9

    Generate a personalized before-you-ship checklist for your app, with the things you already have checked off. Pick your app type (web app, SaaS, store, or content) and it builds a tailored list covering security, legal basics (privacy policy, terms, cookie consent), social preview, payments and refunds, accessibility, analytics, and backups, then scans your repo and pre-checks what is already there. Every item says why it matters in plain English.

    2
    0No reviews

    📦 Package Supply Chain Sentinel

    by JustHandled Labs

    $19

    Vet dependency changes for supply-chain risk before you install, commit, or release. Scans package and lockfile diffs for install-time lifecycle scripts, non-registry sources, suspicious download commands, typosquatting, and floating versions, across npm, pnpm, yarn, pip, uv, and poetry. Flags what to review with evidence. No install required.

    1
    0No reviews

    🔳 QR Payload Auditor

    by JustHandled Labs

    $5

    Audit the decoded text a QR code carries before you print it on something. Flags URLs that are not absolute, link shorteners that hide the real destination, unsafe schemes (javascript:, data:, file:), payloads too long to scan reliably, malformed Wi-Fi or contact payloads, and exposed credentials like a Wi-Fi password or a token sitting in a URL. It audits the decoded payload you paste; it does not read images.

    1
    0No reviews

    code repair spine

    by Corey Jacobs

    Free

    Generate source-safe repository audits and repair handoff bundles without mutating your code.

    1
    2No reviews

    Security Audit & Compliance Toolkit

    by Arnstein Larsen

    $12.99

    A professional-grade toolkit for SAST code reviews, PII scanning, and automated compliance gap analysis.

    1
    0No reviews

    skill hardening certifier

    by Nex AI

    $7

    A rule-based security scanner and auto-hardener for AI agent skills to detect injections and unsafe code.

    2
    0No reviews

    Dependency & Supply Chain Risk Gate

    by PubsProToolkit

    $12

    Audit your project's dependencies for supply-chain risk before they ship. Detects the ecosystem, runs the right vulnerability scanners against live advisory data, and adds the checks tooling misses — outdated or abandoned packages, typosquatted or suspicious names, risky install scripts, and license conflicts — then returns a prioritized fix list and a PASS / REVIEW / BLOCK verdict. It's npm audit with triage and judgment on top.

    1
    0No reviews

    ai skill quality gate pro pack

    by Corey Jacobs

    Free

    Run a buyer-readiness check before publishing an AI agent skill package.

    2
    1No reviews

    WordPress Security Code Auditor

    by Arnstein Larsen

    $27.99

    A senior WordPress security auditor that reasons about WP-API taint flow — not regex hits — to find the 8 real plugin/theme vulnerability classes a generic scanner misses, and returns scored findings with ready-to-merge before→after patches.

    1
    0No reviews

    AI Prompt Injection Defense Shield & LLM Jailbreak Security Auditor Code Review Agent

    by Brandon DeVries

    Free

    Stop leaving your AI startup exposed to malicious users trying to steal your proprietary system prompts or bypass your paywalls. The AI Prompt Injection Defense Shield is an automated code review agent that deeply analyzes your Next.js or Python backend, instantly detecting insecure LLM input fields, un-sanitized API data streams, and weak prompt boundaries. By automatically generating the exact copy-paste code patches required to harden your AI wrapper against the latest OWASP top 10 LLM vulnerabilities, this skill allows solo developers and indie hackers to confidently launch their SaaS without the fear of massive, unexpected API billing spikes or catastrophic data leaks.

    1
    2No reviews

    ⚠️ Model Risk Register Generator

    by JustHandled Labs

    $12

    Generate the model and vendor risk register a security lead asks for the morning after a model gets switched off. It scans your codebase for every model and provider, merges in the owner and data-residency notes you supply, and renders a register with provider, model, where it's used, fallback status, and an availability-risk rating per dependency. Markdown by default, CSV with a flag. Continuity-focused, not a compliance assessment.

    1
    0No reviews

    linux audit

    by SkillBill

    $9

    Complete security audit for Linux systems and WSL2. Checks kernel CVEs, SSH, firewall, users, and more hardening in one shot.

    2
    0No reviews

    MCP Security Review

    by Ifásola

    $5

    Specialized static security scanner for MCP servers and Python tool handlers to prevent injection and data leaks.

    2
    0No reviews